TheTechGuide Forum
General Category => Tech Clinic => Topic started by: rinoscar on September 04, 2010, 11:56:15 AM
-
Hello,
Last night upon openeing my pc I got a black screen and then the following message"Windows could not start because the following is missing/corrupt: Windows\system32\config\system
So i rebooted and this happened a few times before windows actually opened.
I already ran OTL: Here is the OTL.TXT
OTL logfile created on: 9/4/2010 12:34:29 PM - Run 1
OTL by OldTimer - Version 3.2.11.0 Folder = C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\Rino\EXE.files
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1,023.00 Mb Total Physical Memory | 563.00 Mb Available Physical Memory | 55.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 87.00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.30 Gb Total Space | 10.51 Gb Free Space | 28.17% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: HOME-13C58E823B
Current User Name: Rino Scarsella
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Processes (SafeList) ==========
PRC - [2010/09/04 12:31:14 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\Rino\EXE.files\OTL.exe
PRC - [2010/08/18 12:28:06 | 000,340,520 | ---- | M] (Kaspersky Lab) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe
PRC - [2009/12/10 03:39:04 | 000,065,536 | ---- | M] (PostgreSQL Global Development Group) -- C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe
PRC - [2009/12/10 03:37:16 | 003,690,496 | ---- | M] (PostgreSQL Global Development Group) -- C:\Program Files\PostgreSQL\8.3\bin\postgres.exe
PRC - [2009/10/20 19:34:38 | 000,207,376 | ---- | M] (Kaspersky Lab) -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtblfs.exe
PRC - [2008/04/13 20:12:19 | 001,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
PRC - [2006/11/21 21:08:57 | 000,813,912 | ---- | M] (Microsoft Corporation) -- C:\Program Files\Microsoft IntelliType Pro\itype.exe
PRC - [2003/04/07 22:36:06 | 000,176,128 | ---- | M] (Netropa Corp.) -- C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe
PRC - [2002/12/10 04:40:58 | 000,102,400 | ---- | M] (Netropa Corp.) -- C:\Program Files\Netropa\Inetkb\iNetKb.exe
PRC - [2002/02/21 00:48:18 | 000,102,400 | ---- | M] () -- C:\Program Files\Netropa\Multimedia Keyboard\Traymon.exe
PRC - [2001/11/02 03:19:34 | 000,090,112 | ---- | M] (Netropa Corp.) -- C:\Program Files\Netropa\Onscreen Display\OSD.exe
PRC - [2001/08/06 07:41:48 | 000,028,672 | ---- | M] () -- C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe
========== Modules (SafeList) ==========
MOD - [2010/09/04 12:31:14 | 000,574,976 | ---- | M] (OldTimer Tools) -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\Rino\EXE.files\OTL.exe
MOD - [2008/04/13 20:10:20 | 000,110,592 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\system32\msscript.ocx
========== Win32 Services (SafeList) ==========
SRV - File not found [On_Demand | Stopped] -- C:\WINDOWS\System32\appmgmts.dll -- (AppMgmt)
SRV - [2010/08/18 12:28:06 | 000,340,520 | ---- | M] (Kaspersky Lab) [Auto | Running] -- C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe -- (AVP)
SRV - [2009/12/10 03:39:04 | 000,065,536 | ---- | M] (PostgreSQL Global Development Group) [Auto | Running] -- C:\Program Files\PostgreSQL\8.3\bin\pg_ctl.exe -- (pgsql-8.3)
SRV - [2007/02/20 21:35:02 | 000,073,728 | ---- | M] (HP) [Auto | Stopped] -- C:\WINDOWS\system32\HPZipm12.exe -- (Pml Driver HPZ12)
SRV - [2001/08/06 07:41:48 | 000,028,672 | ---- | M] () [Auto | Running] -- C:\Program Files\Netropa\Multimedia Keyboard\nhksrv.exe -- (nhksrv)
========== Driver Services (SafeList) ==========
DRV - [2010/03/18 16:47:37 | 000,315,408 | ---- | M] (Kaspersky Lab) [File_System | System | Running] -- C:\WINDOWS\system32\drivers\klif.sys -- (KLIF)
DRV - [2009/10/14 20:18:34 | 000,036,880 | ---- | M] (Kaspersky Lab) [Kernel | Boot | Running] -- C:\WINDOWS\system32\drivers\klbg.sys -- (klbg)
DRV - [2009/10/02 18:39:44 | 000,019,472 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klmouflt.sys -- (klmouflt)
DRV - [2009/09/14 13:42:46 | 000,032,272 | ---- | M] (Kaspersky Lab) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\klim5.sys -- (klim5)
DRV - [2009/09/01 14:29:50 | 000,128,016 | ---- | M] (Kaspersky Lab) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\kl1.sys -- (kl1)
DRV - [2008/04/13 14:45:29 | 000,010,624 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\gameenum.sys -- (gameenum)
DRV - [2008/04/13 13:45:12 | 000,060,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\USBAUDIO.sys -- (usbaudio) USB Audio Driver (WDM)
DRV - [2007/02/03 10:32:36 | 000,041,504 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\LVUSBSta.sys -- (LVUSBSta)
DRV - [2007/02/03 10:25:56 | 001,075,360 | ---- | M] (Logitech Inc.) [Kernel | On_Demand | Stopped] -- C:\WINDOWS\system32\drivers\Camdrl.sys -- (CamDrL) Logitech QuickCam Pro 3000(CamDrl)
DRV - [2006/08/10 07:32:14 | 000,204,672 | ---- | M] (VIA Technologies, Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\vinyl97.sys -- (VIAudio) Vinyl AC'97 Audio Controller (WDM)
DRV - [2004/08/03 18:29:28 | 000,701,440 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\ati2mtag.sys -- (ati2mtag)
DRV - [2002/06/03 12:18:32 | 000,040,832 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\WINDOWS\system32\drivers\es1371mp.sys -- (es1371) Creative AudioPCI (ES1371,ES1373) (WDM)
DRV - [2001/12/20 10:02:12 | 000,006,656 | ---- | M] (Netropa Corporation) [Kernel | System | Running] -- C:\WINDOWS\system32\drivers\Msikbd2k.sys -- (msikbd2k)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = about:blank
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://en.canoe.ca/home.html (http://"http://en.canoe.ca/home.html")
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
FF - HKLM\software\mozilla\Thunderbird\Extensions\\{eea12ec4-729d-4703-bc37-106ce9879ce2}: C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\THBExt [2010/03/18 16:49:04 | 000,000,000 | ---D | M]
[2009/11/30 18:29:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Application Data\Mozilla\Extensions
[2009/11/30 18:29:57 | 000,000,000 | ---D | M] -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Application Data\Mozilla\Extensions\[email protected]
O1 HOSTS File: ([2009/08/30 14:34:08 | 000,325,921 | R--- | M]) - C:\WINDOWS\system32\drivers\etc\hosts
O1 - Hosts: 127.0.0.1 localhost
O1 - Hosts: 127.0.0.1 www.007guard.com (http://"http://www.007guard.com")
O1 - Hosts: 127.0.0.1 007guard.com
O1 - Hosts: 127.0.0.1 008i.com
O1 - Hosts: 127.0.0.1 www.008k.com (http://"http://www.008k.com")
O1 - Hosts: 127.0.0.1 008k.com
O1 - Hosts: 127.0.0.1 www.00hq.com (http://"http://www.00hq.com")
O1 - Hosts: 127.0.0.1 00hq.com
O1 - Hosts: 127.0.0.1 010402.com
O1 - Hosts: 127.0.0.1 www.032439.com (http://"http://www.032439.com")
O1 - Hosts: 127.0.0.1 032439.com
O1 - Hosts: 127.0.0.1 www.0scan.com (http://"http://www.0scan.com")
O1 - Hosts: 127.0.0.1 0scan.com
O1 - Hosts: 127.0.0.1 1000gratisproben.com
O1 - Hosts: 127.0.0.1 www.1000gratisproben.com (http://"http://www.1000gratisproben.com")
O1 - Hosts: 127.0.0.1 1001namen.com
O1 - Hosts: 127.0.0.1 www.1001namen.com (http://"http://www.1001namen.com")
O1 - Hosts: 127.0.0.1 100888290cs.com
O1 - Hosts: 127.0.0.1 www.100888290cs.com (http://"http://www.100888290cs.com")
O1 - Hosts: 127.0.0.1 www.100sexlinks.com (http://"http://www.100sexlinks.com")
O1 - Hosts: 127.0.0.1 100sexlinks.com
O1 - Hosts: 127.0.0.1 10sek.com
O1 - Hosts: 127.0.0.1 www.10sek.com (http://"http://www.10sek.com")
O1 - Hosts: 127.0.0.1 www.1-2005-search.com (http://"http://www.1-2005-search.com")
O1 - Hosts: 127.0.0.1 1-2005-search.com
O1 - Hosts: 11154 more lines...
O2 - BHO: (IEVkbdBHO Class) - {59273AB4-E7D3-40F9-A1A8-6FA9CCA1862C} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ievkbd.dll (Kaspersky Lab)
O2 - BHO: (SSVHelper Class) - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll (Sun Microsystems, Inc.)
O2 - BHO: (FilterBHO Class) - {E33CF602-D945-461A-83F0-819F76A199F8} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll (Kaspersky Lab)
O4 - HKLM..\Run: [AVP] C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\avp.exe (Kaspersky Lab)
O4 - HKLM..\Run: [itype] C:\Program Files\Microsoft IntelliType Pro\itype.exe (Microsoft Corporation)
O4 - HKLM..\Run: [MULTIMEDIA KEYBOARD] C:\Program Files\Netropa\Multimedia Keyboard\MMKeybd.exe (Netropa Corp.)
O4 - HKLM..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre6\bin\jusched.exe File not found
O4 - Startup: C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Start Menu\Programs\Startup\OneNote 2007 Screen Clipper and Launcher.lnk = C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 60
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: HonorAutoRunSetting = 1
O7 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 36
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveAutoRun = FF FF FF FF [binary data]
O8 - Extra context menu item: Add to Anti-Banner - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\ie_banner_deny.htm ()
O8 - Extra context menu item: E&xport to Microsoft Excel - C:\Program Files\Microsoft Office\Office12\EXCEL.EXE (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\npjpi160_20.dll (Sun Microsystems, Inc.)
O9 - Extra Button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra 'Tools' menuitem : S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files\Microsoft Office\Office12\ONBttnIE.dll (Microsoft Corporation)
O9 - Extra Button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files\PokerStars\PokerStarsUpdate.exe (PokerStars)
O9 - Extra Button: &Virtual keyboard - {4248FE82-7FCB-46AC-B270-339F08212110} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll (Kaspersky Lab)
O9 - Extra Button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files\Microsoft Office\Office12\REFIEBAR.DLL (Microsoft Corporation)
O9 - Extra Button: URLs c&heck - {CCF151D8-D089-449F-A5A4-D9909053F20F} - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\klwtbbho.dll (Kaspersky Lab)
O9 - Extra Button: Bodog Poker - {F47C1DB5-ED21-4dc1-853E-D1495792D4C5} - C:\Program Files\Bodog Poker\BPGame.exe (Bodog)
O16 - DPF: {166B1BCA-3F9C-11CF-8075-444553540000} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (http://"http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab") (Shockwave ActiveX Control)
O16 - DPF: {21BB8360-F943-447E-98F3-3C22345375A7} http://zone.msn.com/bingame/choc/default/ChocolatierWeb.1.0.0.17.cab (http://"http://zone.msn.com/bingame/choc/default/ChocolatierWeb.1.0.0.17.cab") (CPlayFirstChocolatieControl Object)
O16 - DPF: {233C1507-6A77-46A4-9443-F871F945D258} http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab (http://"http://download.macromedia.com/pub/shockwave/cabs/director/sw.cab") (Shockwave ActiveX Control)
O16 - DPF: {49232000-16E4-426C-A231-62846947304B} https://wimpro.cce.hp.com/ChatEntry/downloads/sysinfo.cab (http://"https://wimpro.cce.hp.com/ChatEntry/downloads/sysinfo.cab") (SysData Class)
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1272072987162 (http://"http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1272072987162") (MUWebControl Class)
O16 - DPF: {6F15128C-E66A-490C-B848-5000B5ABEEAC} https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab (http://"https://h20436.www2.hp.com/ediags/dex/secure/HPDEXAXO.cab") (HP Download Manager)
O16 - DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cab (http://"http://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cab") (GMNRev Class)
O16 - DPF: {7E980B9B-8AE5-466A-B6D6-DA8CF814E78A} http://sympatico.zone.msn.com/bingame/luxr/default/mjolauncher.cab (http://"http://sympatico.zone.msn.com/bingame/luxr/default/mjolauncher.cab") (MJLauncherCtrl Class)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (http://"http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab") (Java Plug-in 1.6.0_20)
O16 - DPF: {9BDF4724-10AA-43D5-BD15-AEA0D2287303} http://zone.msn.com/bingame/zpagames/zpa_txhe.cab79352.cab (http://"http://zone.msn.com/bingame/zpagames/zpa_txhe.cab79352.cab") (MSN Games – Texas Holdem Poker)
O16 - DPF: {A9F8D9EC-3D0A-4A60-BD82-FBD64BAD370D} http://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab (http://"http://h20264.www2.hp.com/ediags/dd/install/HPDriverDiagnosticsxp2k.cab") (DDRevision Class)
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} http://cdn2.zone.msn.com/binFramework/v10/ZPAFramework.cab102118.cab (http://"http://cdn2.zone.msn.com/binFramework/v10/ZPAFramework.cab102118.cab") (MSN Games - Installer)
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab (http://"http://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab") (Java Plug-in 1.6.0_03)
O16 - DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (http://"http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab") (Java Plug-in 1.6.0_20)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab (http://"http://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab") (Java Plug-in 1.6.0_20)
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab (http://"http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab") (Shockwave Flash Object)
O16 - DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab (http://"http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab") (Reg Error: Key error.)
O16 - DPF: Garmin Communicator Plug-In https://static.garmincdn.com/gcp/ie/2.9.2.0/GarminAxControl.CAB (http://"https://static.garmincdn.com/gcp/ie/2.9.2.0/GarminAxControl.CAB") (Reg Error: Key error.)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 24.200.241.37 24.201.245.77 24.200.243.189
O18 - Protocol\Handler\ms-help {314111c7-a502-11d2-bbca-00c04f8ec294} - C:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll (Microsoft Corporation)
O18 - Protocol\Filter\text/xml {807563E5-5146-11D5-A672-00B0D022E945} - C:\Program Files\Common Files\Microsoft Shared\OFFICE12\MSOXMLMF.DLL (Microsoft Corporation)
O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~2\mzvkbd3.dll) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\mzvkbd3.dll (Kaspersky Lab)
O20 - AppInit_DLLs: (C:\PROGRA~1\KASPER~1\KASPER~2\kloehk.dll) - C:\Program Files\Kaspersky Lab\Kaspersky Internet Security 2010\kloehk.dll (Kaspersky Lab)
O20 - HKLM Winlogon: Shell - (Explorer.exe) - C:\WINDOWS\explorer.exe (Microsoft Corporation)
O20 - Winlogon\Notify\klogon: DllName - C:\WINDOWS\system32\klogon.dll - C:\WINDOWS\system32\klogon.dll (Kaspersky Lab)
O32 - HKLM CDRom: AutoRun - 0
O32 - AutoRun File - [2007/02/26 15:35:52 | 000,000,000 | ---- | M] () - C:\AUTOEXEC.BAT -- [ NTFS ]
O32 - AutoRun File - [2010/06/22 06:26:03 | 000,000,000 | RHSD | M] - C:\autorun.inf -- [ NTFS ]
O33 - MountPoints2\{c6040a01-77cf-11dd-b702-806d6172696f}\Shell - "" = AutoRun
O33 - MountPoints2\{c6040a01-77cf-11dd-b702-806d6172696f}\Shell\AutoRun - "" = Auto&Play
O33 - MountPoints2\{c6040a01-77cf-11dd-b702-806d6172696f}\Shell\AutoRun\command - "" = I:\setup.exe -- File not found
O34 - HKLM BootExecute: (autocheck autochk *) - File not found
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
========== Files/Folders - Created Within 30 Days ==========
[2010/09/03 16:46:32 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Local Settings\Application Data\PokerTracker
[2010/08/31 19:47:10 | 000,000,000 | ---D | C] -- C:\Program Files\Bodog Poker
[2010/08/26 06:19:12 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Pure Networks
[2010/08/25 06:22:52 | 000,000,000 | ---D | C] -- C:\Documents and Settings\All Users.WINDOWS\Application Data\Linksys
[2010/08/24 19:41:59 | 000,153,376 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaws.exe
[2010/08/24 19:41:59 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\javaw.exe
[2010/08/24 19:41:59 | 000,145,184 | ---- | C] (Sun Microsystems, Inc.) -- C:\WINDOWS\System32\java.exe
[2010/08/23 00:28:33 | 000,000,000 | ---D | C] -- C:\poker
[2010/08/21 19:07:55 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\rinoscar
[2010/08/21 18:15:13 | 000,000,000 | ---D | C] -- C:\Program Files\PostgreSQL
[2010/08/21 18:07:37 | 000,000,000 | ---D | C] -- C:\Program Files\PokerTracker 3
[2010/08/18 22:55:50 | 000,000,000 | ---D | C] -- C:\Program Files\RedStarPoker
[2010/08/16 18:24:10 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\Incomplete
[2010/08/09 12:37:53 | 000,000,000 | ---D | C] -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Local Settings\Application Data\cache
========== Files - Modified Within 30 Days ==========
[2010/09/04 12:32:26 | 000,000,245 | ---- | M] () -- C:\WINDOWS\MSIOSD.INI
[2010/09/04 11:44:10 | 007,864,320 | ---- | M] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\ntuser.dat
[2010/09/04 11:40:43 | 000,000,006 | -H-- | M] () -- C:\WINDOWS\tasks\SA.DAT
[2010/09/04 11:40:42 | 000,013,712 | ---- | M] () -- C:\WINDOWS\System32\wpa.dbl
[2010/09/04 11:40:40 | 000,002,048 | --S- | M] () -- C:\WINDOWS\bootstat.dat
[2010/09/04 11:40:34 | 1073,270,784 | -HS- | M] () -- C:\hiberfil.sys
[2010/09/04 00:42:03 | 000,000,178 | -HS- | M] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\ntuser.ini
[2010/09/04 00:41:42 | 004,803,700 | -H-- | M] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Local Settings\Application Data\IconCache.db
[2010/08/31 19:53:59 | 000,028,648 | ---- | M] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Local Settings\Application Data\GDIPFONTCACHEV1.DAT
[2010/08/31 19:51:58 | 000,001,559 | ---- | M] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\Bodog Poker.lnk
[2010/08/31 19:51:58 | 000,000,651 | ---- | M] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Application Data\Microsoft\Internet Explorer\Quick Launch\Bodog Poker.lnk
[2010/08/27 06:48:43 | 000,146,016 | ---- | M] () -- C:\WINDOWS\System32\FNTCACHE.DAT
[2010/08/23 00:28:34 | 000,000,567 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\work files.lnk
[2010/08/21 18:08:40 | 000,004,105 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\bltofzsb.qlf
[2010/08/21 18:08:04 | 000,000,744 | ---- | M] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\PokerTracker 3.lnk
[2010/08/20 00:18:39 | 000,710,656 | ---- | M] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\30-stocks.xls
[2010/08/20 00:06:30 | 000,718,336 | ---- | M] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\30-correlations.xls
[2010/08/11 13:34:08 | 000,001,374 | ---- | M] () -- C:\WINDOWS\imsins.BAK
[2010/08/09 12:25:32 | 000,001,467 | ---- | M] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\Full Tilt Poker.lnk
[2010/08/08 12:27:46 | 000,000,754 | ---- | M] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Application Data\Microsoft\Internet Explorer\Quick Launch\PokerStars.lnk
========== Files Created - No Company Name ==========
[2010/08/31 19:51:58 | 000,000,651 | ---- | C] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Application Data\Microsoft\Internet Explorer\Quick Launch\Bodog Poker.lnk
[2010/08/31 19:51:57 | 000,001,559 | ---- | C] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\Bodog Poker.lnk
[2010/08/24 21:03:57 | 000,000,036 | R--- | C] () -- C:\WINDOWS\iprel.bat
[2010/08/24 21:03:57 | 000,000,034 | R--- | C] () -- C:\WINDOWS\ipren.bat
[2010/08/24 21:03:57 | 000,000,029 | R--- | C] () -- C:\WINDOWS\ip.bat
[2010/08/23 00:28:34 | 000,000,567 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\work files.lnk
[2010/08/21 18:08:40 | 000,004,105 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\bltofzsb.qlf
[2010/08/21 18:08:04 | 000,000,744 | ---- | C] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\PokerTracker 3.lnk
[2010/08/20 00:08:58 | 000,710,656 | ---- | C] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\30-stocks.xls
[2010/08/20 00:06:27 | 000,718,336 | ---- | C] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\30-correlations.xls
[2010/08/09 12:25:32 | 000,001,467 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Desktop\Full Tilt Poker.lnk
[2010/08/08 12:27:46 | 000,000,754 | ---- | C] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Application Data\Microsoft\Internet Explorer\Quick Launch\PokerStars.lnk
[2009/06/03 09:48:25 | 000,000,031 | ---- | C] () -- C:\WINDOWS\warhead.ini
[2009/05/04 15:03:00 | 000,059,904 | ---- | C] () -- C:\WINDOWS\System32\zlib1.dll
[2009/05/04 14:53:28 | 000,286,720 | ---- | C] () -- C:\WINDOWS\System32\libcurl.dll
[2009/05/04 14:53:10 | 000,143,360 | ---- | C] () -- C:\WINDOWS\System32\libexpatw.dll
[2009/04/28 14:29:14 | 000,011,776 | ---- | C] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Local Settings\Application Data\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
[2009/01/02 14:26:33 | 000,003,059 | ---- | C] () -- C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Application Data\HPCOM_48BitScanUpdate.log
[2009/01/02 14:26:33 | 000,000,214 | ---- | C] () -- C:\WINDOWS\HP_48BitScanUpdatePatch.ini
[2008/12/31 21:19:34 | 000,001,226 | ---- | C] () -- C:\Documents and Settings\All Users.WINDOWS\Application Data\hpzinstall.log
[2008/12/31 17:27:23 | 000,000,000 | ---- | C] () -- C:\WINDOWS\WININIT.INI
[2008/12/31 17:27:22 | 000,028,672 | ---- | C] () -- C:\WINDOWS\System32\msiosd32.dll
[2008/12/31 17:27:22 | 000,000,245 | ---- | C] () -- C:\WINDOWS\MSIOSD.INI
[2008/05/06 11:36:31 | 007,756,171 | ---- | C] () -- C:\Program Files\TuneUp Utilities 2007.exe
[2007/03/11 12:06:11 | 000,102,485 | ---- | C] () -- C:\Program Files\sophie.pdf
[2007/02/26 17:35:26 | 000,222,504 | ---- | C] () -- C:\Documents and Settings\LocalService\Local Settings\Application Data\FontCache3.0.0.0.dat
[2007/02/03 08:59:04 | 000,050,127 | ---- | C] () -- C:\WINDOWS\System32\lvcoinst.ini
[2004/09/17 18:37:42 | 000,061,440 | ---- | C] () -- C:\WINDOWS\System32\vuins32.dll
========== Alternate Data Streams ==========
@Alternate Data Stream - 157 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:3DB0B938
@Alternate Data Stream - 149 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:7715B65F
@Alternate Data Stream - 146 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:4F58D818
@Alternate Data Stream - 144 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:74B502CB
@Alternate Data Stream - 142 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:60D735B2
@Alternate Data Stream - 138 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:B894C266
@Alternate Data Stream - 133 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:5F538558
@Alternate Data Stream - 128 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:C3B04546
@Alternate Data Stream - 127 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:ABA71843
@Alternate Data Stream - 123 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:2A8A3140
@Alternate Data Stream - 118 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:5C321E34
@Alternate Data Stream - 117 bytes -> C:\Documents and Settings\All Users.WINDOWS\Application Data\TEMP:3E35D9D6
< End of report >
-
Here is the Extras.txt
OTL Extras logfile created on: 9/4/2010 12:34:30 PM - Run 1
OTL by OldTimer - Version 3.2.11.0 Folder = C:\Documents and Settings\Rino Scarsella.HOME-13C58E823B\Desktop\Rino\EXE.files
Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 8.0.6001.18702)
Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy
1,023.00 Mb Total Physical Memory | 563.00 Mb Available Physical Memory | 55.00% Memory free
2.00 Gb Paging File | 2.00 Gb Available in Paging File | 87.00% Paging File free
Paging file location(s): C:\pagefile.sys 1536 3072 [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 37.30 Gb Total Space | 10.51 Gb Free Space | 28.17% Space Free | Partition Type: NTFS
D: Drive not present or media not loaded
E: Drive not present or media not loaded
F: Drive not present or media not loaded
G: Drive not present or media not loaded
H: Drive not present or media not loaded
I: Drive not present or media not loaded
Computer Name: HOME-13C58E823B
Current User Name: Rino Scarsella
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user
Company Name Whitelist: Off
Skip Microsoft Files: Off
File Age = 30 Days
Output = Standard
========== Extra Registry (SafeList) ==========
========== File Associations ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<extension>]
========== Shell Spawning ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\<key>\shell\[command]\command]
batfile [open] -- "%1" %*
cmdfile [open] -- "%1" %*
comfile [open] -- "%1" %*
exefile [open] -- "%1" %*
htmlfile [edit] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" %1 (Microsoft Corporation)
htmlfile [print] -- "C:\Program Files\Microsoft Office\Office12\msohtmed.exe" /p %1 (Microsoft Corporation)
piffile [open] -- "%1" %*
regfile [merge] -- Reg Error: Key error.
scrfile [config] -- "%1"
scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation)
scrfile [open] -- "%1" /S
txtfile [edit] -- Reg Error: Key error.
Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1
Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
Directory [OneNote.Open] -- C:\PROGRA~1\MICROS~4\Office12\ONENOTE.EXE "%L" (Microsoft Corporation)
Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation)
Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation)
Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation)
========== Security Center Settings ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center]
"FirstRunDisabled" = 1
"AntiVirusDisableNotify" = 0
"FirewallDisableNotify" = 0
"UpdatesDisableNotify" = 1
"AntiVirusOverride" = 0
"FirewallOverride" = 0
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus]
"DisableMonitoring" = 1
"" =
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
"EnableFirewall" = 0
========== Authorized Applications List ==========
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List]
"C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE" = C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE:*:Enabled:Microsoft Office OneNote -- (Microsoft Corporation)
"C:\Program Files\FrostWire\FrostWire.exe" = C:\Program Files\FrostWire\FrostWire.exe:*:Enabled:FrostWire -- (FrostWire Group)
"C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" = C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe:*:Enabled:Yahoo! Messenger -- File not found
========== HKEY_LOCAL_MACHINE Uninstall List ==========
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall]
"{002D9D5E-29BA-3E6D-9BC4-3D7D6DBC735C}" = Microsoft Visual C++ 2008 ATL Update kb973924 - x86 9.0.30729.4148
"{00BA866C-F2A2-4BB9-A308-3DFA695B6F7C}" = Java DB 10.5.3.0
"{0208A7E3-0D30-11D4-A1FC-00508B9D1BA2}" = OmniKey
"{0DC86BEC-5CE3-413A-BB61-C40A3D186B24}" = Scan
"{0E4BC542-9CFD-4E97-B586-9F1E5516E7B9}" = Microsoft IntelliPoint 6.1
"{14BEB6DF-A499-4A38-8E06-E173BCD5C087}" = ScannerCopy
"{17293791-C82E-476C-9997-9A0FF234A19B}" = HP Product Assistant
"{181821B7-82AA-44DA-9DAF-EF254CCB670A}" = Fax
"{20FBC0A0-3160-4F14-83ED-3A74BB6B8C31}" = TrayApp
"{26A24AE4-039D-4CA4-87B4-2F83216020FF}" = Java(TM) 6 Update 20
"{2A5C6AD0-F7B3-40A1-B140-23B085B1B8CE}" = UFile 2008
"{2E8428AD-6CD2-4031-916A-3CF9BBF2DEC9}" = Unload
"{3248F0A8-6813-11D6-A77B-00B0D0160030}" = Java(TM) 6 Update 3
"{32A3A4F4-B792-11D6-A78A-00B0D0160200}" = Java(TM) SE Development Kit 6 Update 20
"{342C7C88-D335-4bc2-8CF1-281857629CE2}" = HP PSC & OfficeJet 4.7
"{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP
"{391E18CE-7D3B-45E9-A8F0-34E77F14F47A}" = ProductContext
"{442BE28B-782B-4DC0-B490-E70A403B1C69}" = Readme
"{451BB54C-8B23-4455-8BDC-14FC7D43E056}" = MSXML4SP2
"{461073BF-9642-4A73-B58E-157358D412AB}" = 6200
"{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater
"{4CCC7F68-A437-4559-A840-F5E010934951}" = HP Driver Diagnostics
"{64FC0C98-B035-4530-B15D-3D30610B6DF1}" = HP Software Update
"{6518675B-CC8D-4AB3-A3F6-CC02FF6548D7}" = 6200_Help
"{655CB07D-C944-40BE-B93F-55957CAC7625}" = AiO_Scan
"{68963635-14A4-48D9-B431-DF3A74D1AAE1}" = Destinations
"{6D8D64BE-F500-55B6-705D-DFD08AFE0624}" = Acrobat.com
"{700A6597-3CE6-49C1-AA75-846B24CDA66D}" = BufferChm
"{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable
"{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
"{7AD25C9F-9957-4D1C-95EF-9BCD09F6D31B}" = HPSystemDiagnostics
"{85BCA736-A0F4-448E-9BC1-6EA08693E10B}" = HP Image Zone Express
"{85CFD253-38AE-4DB1-ACB7-F0F4C791990D}" = AiOSoftware
"{8777AC6D-89F9-4793-8266-DE406F343E89}" = QFolder
"{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}" = Logitech Desktop Messenger
"{90120000-0010-0409-0000-0000000FF1CE}" = Microsoft Software Update for Web Folders (English) 12
"{90120000-0016-0409-0000-0000000FF1CE}" = Microsoft Office Excel MUI (English) 2007
"{90120000-0016-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0018-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint MUI (English) 2007
"{90120000-0018-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001B-0409-0000-0000000FF1CE}" = Microsoft Office Word MUI (English) 2007
"{90120000-001B-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-001F-0409-0000-0000000FF1CE}" = Microsoft Office Proof (English) 2007
"{90120000-001F-0409-0000-0000000FF1CE}_HOMESTUDENTR_{ABDDE972-355B-4AF1-89A8-DA50B7B5C045}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-040C-0000-0000000FF1CE}" = Microsoft Office Proof (French) 2007
"{90120000-001F-040C-0000-0000000FF1CE}_HOMESTUDENTR_{F580DDD5-8D37-4998-968E-EBB76BB86787}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-001F-0C0A-0000-0000000FF1CE}" = Microsoft Office Proof (Spanish) 2007
"{90120000-001F-0C0A-0000-0000000FF1CE}_HOMESTUDENTR_{187308AB-5FA7-4F14-9AB9-D290383A10D9}" = Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
"{90120000-002C-0409-0000-0000000FF1CE}" = Microsoft Office Proofing (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}" = Microsoft Office Shared MUI (English) 2007
"{90120000-006E-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-00A1-0409-0000-0000000FF1CE}" = Microsoft Office OneNote MUI (English) 2007
"{90120000-00A1-0409-0000-0000000FF1CE}_HOMESTUDENTR_{2FC4457D-409E-466F-861F-FB0CB796B53E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{90120000-0115-0409-0000-0000000FF1CE}" = Microsoft Office Shared Setup Metadata MUI (English) 2007
"{90120000-0115-0409-0000-0000000FF1CE}_HOMESTUDENTR_{DE5A002D-8122-4278-A7EE-3121E7EA254E}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}" = Microsoft Office Home and Student 2007
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{0B36C6D6-F5D8-4EAF-BF94-4376A230AD5B}" = Microsoft Office 2007 Service Pack 2 (SP2)
"{91120000-002F-0000-0000-0000000FF1CE}_HOMESTUDENTR_{3D019598-7B59-447A-80AE-815B703B84FF}" = Security Update for Microsoft Office system 2007 (972581)
"{9422C8EA-B0C6-4197-B8FC-DC797658CA00}" = Windows Live Sign-in Assistant
"{9D8B0949-7C47-476F-9F06-F900D3B078EA}" = Kaspersky Internet Security 2010
"{A2BCA9F1-566C-4805-97D1-7FDC93386723}" = Adobe AIR
"{AC76BA86-7AD7-1033-7B44-A93000000001}" = Adobe Reader 9.3.4
"{AF5A39FE-51FB-4BA3-B399-2D1F0C65D617}_is1" = AusLogics System Information
"{B6797F11-4A7D-45F5-8A20-72E9CCD83538}" = UFile Updater 2009
"{B823632F-3B72-4514-8861-B961CE263224}" = PostgreSQL 8.3
"{B911B811-BA3E-46D4-90F8-6F3338359651}" = Director
"{C3F81504-72F3-4262-9449-487404DA75BB}" = 6200Trb
"{C73A3AB4-99A4-45E5-B77F-09A3065E0D6A}" = Microsoft IntelliType Pro 6.1
"{C9967B5A-6E08-4E79-BFBD-BBB07DB0CA04}" = UFile Updater 2008
"{CAE7D1D9-3794-4169-B4DD-964ADBC534EE}" = HP Product Detection
"{CDFCF124-115F-4976-8BF4-08C89187A146}" = WebReg
"{D36F4DCA-B6D5-403A-B69D-2439D59FC9A7}" = UFile 2009
"{D4C9692E-4EFA-4DA0-8B7F-9439466D9E31}" = Full Tilt Poker
"{D627784F-B3EE-44E8-96B1-9509B991EA34}_is1" = AusLogics Registry Defrag
"{DF6A13C0-77DF-41FE-BD05-6D5201EB0CE7}_is1" = AusLogics Disk Defrag
"{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
"Adobe AIR" = Adobe AIR
"Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX
"Adobe Shockwave Player" = Adobe Shockwave Player 11.5
"Bodog Poker_is1" = Bodog Poker
"com.adobe.mauby.4875E02D9FB21EE389F73B8D1702B320485DF8CE.1" = Acrobat.com
"FrostWire" = FrostWire 4.18.6
"HOMESTUDENTR" = Microsoft Office Home and Student 2007
"HP Photo & Imaging" = HP Image Zone 4.7
"ie8" = Windows Internet Explorer 8
"InstallWIX_{9D8B0949-7C47-476F-9F06-F900D3B078EA}" = Kaspersky Internet Security 2010
"MSCompPackV1" = Microsoft Compression Client Pack 1.0 for Windows XP
"PokerStars" = PokerStars
"PokerTracker3" = PokerTracker 3 (remove only)
"Spell Checker For OE 2.1" = Spell Checker For OE 2.1
"SpywareBlaster_is1" = SpywareBlaster 4.3
"VN_VUIns_Rhine_VIA" = VIA Rhine-Family Fast Ethernet Adapter
"Windows Media Format Runtime" = Windows Media Format 11 runtime
"Windows Media Player" = Windows Media Player 11
"Windows XP Service Pack" = Windows XP Service Pack 3
"WMFDist11" = Windows Media Format 11 runtime
"wmp11" = Windows Media Player 11
"Wudf01000" = Microsoft User-Mode Driver Framework Feature Pack 1.0
========== Last 10 Event Log Errors ==========
[ Application Events ]
Error - 4/24/2010 10:07:03 AM | Computer Name = HOME-13C58E823B | Source = MsiInstaller | ID = 10005
Description = Product: Windows Live Sign-in Assistant -- The installer has encountered
an unexpected error installing this package. This may indicate a problem with this
package. The error code is 2753. The arguments are: SDKCOMPONENTS_PPCRL_WLLOGINPROXY.EXE,
,
Error - 6/15/2010 6:24:45 AM | Computer Name = HOME-13C58E823B | Source = Application Hang | ID = 1002
Description = Hanging application iexplore.exe, version 8.0.6001.18702, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.
Error - 6/15/2010 6:27:43 AM | Computer Name = HOME-13C58E823B | Source = Application Hang | ID = 1002
Description = Hanging application iexplore.exe, version 8.0.6001.18702, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.
Error - 6/15/2010 6:29:52 AM | Computer Name = HOME-13C58E823B | Source = Application Hang | ID = 1002
Description = Hanging application iexplore.exe, version 8.0.6001.18702, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.
Error - 6/15/2010 6:44:23 PM | Computer Name = HOME-13C58E823B | Source = Application Hang | ID = 1002
Description = Hanging application iexplore.exe, version 8.0.6001.18702, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.
Error - 6/15/2010 6:44:28 PM | Computer Name = HOME-13C58E823B | Source = Application Hang | ID = 1001
Description = Fault bucket 1180947459.
Error - 6/27/2010 5:30:09 PM | Computer Name = HOME-13C58E823B | Source = Application Hang | ID = 1002
Description = Hanging application iexplore.exe, version 8.0.6001.18702, hang module
hungapp, version 0.0.0.0, hang address 0x00000000.
Error - 6/27/2010 5:30:15 PM | Computer Name = HOME-13C58E823B | Source = Application Hang | ID = 1001
Description = Fault bucket 1180947459.
Error - 7/9/2010 8:06:43 PM | Computer Name = HOME-13C58E823B | Source = Application Error | ID = 1000
Description = Faulting application hpsysdig.exe, version 1.6.0.0, faulting module
unknown, version 0.0.0.0, fault address 0x00000000.
Error - 7/9/2010 8:06:58 PM | Computer Name = HOME-13C58E823B | Source = Application Error | ID = 1001
Description = Fault bucket 125902435.
[ System Events ]
Error - 8/30/2010 8:11:52 PM | Computer Name = HOME-13C58E823B | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 8/30/2010 8:11:53 PM | Computer Name = HOME-13C58E823B | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 9/4/2010 11:41:06 AM | Computer Name = HOME-13C58E823B | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 9/4/2010 11:41:06 AM | Computer Name = HOME-13C58E823B | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 9/4/2010 11:41:06 AM | Computer Name = HOME-13C58E823B | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 9/4/2010 11:41:06 AM | Computer Name = HOME-13C58E823B | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 9/4/2010 11:41:06 AM | Computer Name = HOME-13C58E823B | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 9/4/2010 12:37:17 PM | Computer Name = HOME-13C58E823B | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 9/4/2010 12:37:18 PM | Computer Name = HOME-13C58E823B | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
Error - 9/4/2010 12:40:25 PM | Computer Name = HOME-13C58E823B | Source = Disk | ID = 262151
Description = The device, \Device\Harddisk0\D, has a bad block.
< End of report >
-
It appears you may have had a corrupt registry, but you should also check your disk for errors
The device, \Device\Harddisk0\D, has a bad block.
Open MyComputer>>Right click on your C: drive and select Properties
Run a Disk Cleanup
Let it finish calculating and then have it clean
Downloaded program Files
Temp Internet Files
Temp Files
Recycle Bin
Do the same for D: drive if available
When done Disk Cleanup
Click on TOOLS>>Select CHECK NOW under Error checking
Tick both
Fix errors and repair bad sectors
Click START>>This will run on next start, allow it and reboot
Let me know if it finds and repairs anything
Do this on both C: and D: drive if both available
-
Hi, I did everything that you told me to do, but the D drive did not have run disk clean up, so I bypassed it, but for the C drive it all went well up until restart. When it restarted I got the same black screen for about 10 seconds and again the same message, that was last night. I then went to bed.
This morning(Sunday) I tried to start the PC but got the same message again. I closed and restarted it about 10 times hoping it would catch once. I then inserted the windows xp cd and when I push any key to run the disk it goes to the black screen and get the same message.
Please advice,
Thank you
-
Do you have the Bios set to boot from CD first?
I find that resolving this issue is easier with a linux live cd then using Windows recovery console method
Have you seen this link?
http://support.microsoft.com/kb/307545
It involves booting to Recovery Console and doing All the steps outlined
Do you want to go that route, or try a linux live cd?
-
First off..WOW that was a fast reply. don't you ever take a day off(http://images.thetechguide.com/forum/public/style_emoticons/default/smile.gif)
I have no idea if I have the bios to boot from cd.
I'll take the simple route. All I know about computers is turn on go online and turn it off(http://images.thetechguide.com/forum/public/style_emoticons/default/unsure.gif)
I saw the link and it is all chinese to me, so I am in your hands, you tell me what to do and I will do it.
-
Your going to have some knowledge on how to start your computer with CD first in BIOS
Try restarting your computer, when starting you should see something on the screen about entering Setup...
I can't know what key to press, as many computers are different
But normally it's the Delete key or something like F2
You will then go to the Boot menu and change the boot order to CD first
Save the changes
Let me know if you can do that please
-
Ok, I opened and was hitting the delete button. What came up;
Amibios simple setup utility and in it there are
Standarsd CMOS setup
Advanced setup
Powermanagement setup
PCI/plug and play
Load optimal settings...ect
but I don't see the boot menu.
-
all bios setups are different, most of the steps you need to do are going to need some computer knowledge
If your not comfortable performing them, you may be best to get a hand
In your Bios, the boot order may be under Advanced setup
-
Let's do this, what better way to learn
Ok I am in advanced setup,
Quick boot: enabled
1st boot device: cdrom
2nd boot device IDE-0
3rd boot device: disabled
what's next?
-
If you set CDrom to first boot device, ensure to save the change
If it was already set that way, leave it please
I see you have access to another computer
Download and save to your desktop a copy of Puppy Linux from one of these links
http://distro.ibiblio.org/pub/linux/distributions/puppylinux/puppy-5.1/lupu-510.iso
OR
http://ftp.nluug.nl/ftp/pub/os/Linux/distr/puppylinux/puppy-5.1/lupu-510.iso
After you save it to desktop, you will need a blank CD or CDRW
and record the Image file, do you know how to record an ISO as image file
Do you have CD recording software installed?
If not there is free alternatives
-
CDrom was already ar 1st boot device,
I clicked on the first link, saved it to desktop, opened it and then I clicked on burn to cd on the botom right hand.
-
I clicked on the first link, saved it to desktop, opened it and then I clicked on burn to cd on the botom right hand.
I don't know what you mean by that??
What are you using for Burning software?
Do you know how to make an Image file from an ISO?
What operating system are you running on this machine?
-
[quote name='guestolo' date='05 September 2010 - 12:52 PM' timestamp='1283709125' post='471740']
I don't know what you mean by that??
What are you using for Burning software? No clue, how do I find out?
Do you know how to make an Image file from an ISO? No idea
What operating system are you running on this machine? On the laptop it is window vista business service pack2
[/quote]
-
Yah, this isn't going to be easy if you don't know what software your running
Umm, ok, try the following
Download and install Ashampoo burning studio from the following location
http://download.cnet.com/Ashampoo-Burning-Studio-Free/3000-2646_4-10776287.html
NOTE: During installation you will get to a point of installing the ASHAMPOO TOOLBAR
UNCHECK all the options for the toolbar and resetting homepage
There should be 3 entries to uncheck
After installation, run Ashampoo, you will get a prompt to keep you up to date on NEW and UPDATES>>UNCHECK both options and carry on
Insert a blank CD or CDRW
close out any Autorun if prompted
In Ashampoo, select "CREATE/BURN DISC IMAGES"
Select the first option to Burn CD/DVD/BluRay Disc from Disc Image
Browse to the file you saved for Puppy linux on desktop and select it
Should be named>>lupu-510.iso
Then have it write to CD
When done burning successfully, insert the CD into the Computer that won't boot
Restart the computer, eventually, the computer should boot to Puppy linux desktop
Let me know if you can get to that point
-
Ok, it is working...
I now have a different looking desktop,with a screen in the middle saying welcome to lucid puppy....
what is the next step?
-
Great, I'm going to try and follow along on my copy of Puppy
You can close the Welcome to Puppy screen
On the lower left of the screen you should see something like
sda1
sda2
sdb1, etc.....
sda1 or sda2 may represent your Windows partition
If you hover over them, you can find the correct size
Open the windows partition and navigate to the WINDOWS folder
Open the Windows folder
So your in something like the following directory,
mnt/sda2/Windows
Let me know when that is done, we'll then move on
-
Ok I am there but it called
mnt/sda1/windows
If you think it will go faster for you, I don't mind and trust you if you want to access my pc, I think it is called remote assistant.
-
I just noticed another window:NTFS warning, the ntfs-3g driver was unable to mount the ntfs partition and returned this error messgar: ntfs-3g-mount: mount failed:device or resource busy, so the inbuilt kernel ntfs driver has been used to mount the partition read-only
I have an option to click OKAY? or do I just close it?
-
I don't mind and trust you if you want to access my pc, I think it is called remote assistant.
Yes, but your now running in Puppy, more difficult
I've got about an hour left before I head out, see if we can get most of this done
Right click an empty spot in mnt/sda1/windows and select NEW>>DIRECTORY
Name the new directory Tmp
Open the Tmp folder and keep it open for a bit
Do a new navigation and Navigate to the following
folder
mnt/sda1/WINDOWS/system32/config
So now you have 2 windows open
one is
mnt/sda1/WINDOWS/Tmp
and the other
mnt/sda1/WINDOWS/system32/config
I want you to left click and drag one at a time
Drag from the CONFIG folder to the TMP folder all the following files
You should get a prompt, select COPY after each
system
software
sam
security
default
All of them have no extension
Let me know when you have those 5 files transferred to the Tmp folder
-
Right clicked create mnt/sda1/windows/tmp, clicked create, i get a pop up mkdir:read only file system.
-
Close out all windows you have open right now
Right click on SDA1 and choose to "Unmount SDA1"
Then click on CONSOLE icon on the desktop
Type the following
ntfsfix /dev/sda1
Hit ENTER on the keyboard
Note the single space after ntfsfix and /
Try creating Tmp folder again if ntfsfix was successful
-
There is no unmount sda2.
I have unmount sda1(if currently mounted)
Unmount ALL mounted partitions
-
Okay, unmount SDA1
-
Ok done. I left both windows open: the windows/system32/config and the tmp
Now were rolling, what's next:)
-
we're creating backups of those file
Inside the Tmp folder
I need you to right click on each of the files and rename them with the .bak extension
Don't forget the .
As eg.. you will be in the following folder
mnt/sda1/WINDOWS/Tmp
Right click on security and select File 'Security'>>Rename
rename it with the .bak extension so it looks like the following
mnt/sda1/WINDOWS/Tmp\security.bak
Do the for the 4 remaining files
Let me know when that's done, ensure all 5 files have the .bak extension
-
done
-
Very good
/smile.gif\' class=\'bbc_emoticon\' alt=\':)\' />
Next step: We're going after your System restore folder
New navigation window, as eg.. Look for the following folder
There may be only one
mnt/sda1/System Volume Information/_restore{D86480E3-73EF-47BC-A0EB-A81BE6EE3ED8} <<That folder name will be different, do you only have one folder with that name {CLSID}?
-
there are 3 restore folders.
-
[quote name='guestolo' date='05 September 2010 - 03:44 PM' timestamp='1283719470' post='471755']
Very good (http://images.thetechguide.com/forum/public/style_emoticons/default/smile.gif)
Next step: We're going after your System restore folder
New navigation window, as eg.. Look for the following folder
There may be only one
mnt/sda1/System Volume Information/_restore{D86480E3-73EF-47BC-A0EB-A81BE6EE3ED8} <<That folder name will be different, do you only have one folder with that name {CLSID}?
[/quote]
2 of them start with numbers, like...2f9185ed.........the other 724300... the last one which i think it the right one starts with F16EDC5A-2...
EDIT>> I'M ON PAGE 2 of this TOPIC
Are you with me????
-
On the top of the toolbar, there is a "Show Extra Details" Button
Can you click that and then Expand the window to fill the screen
Do you see Modify date
Look for a {CLSID} with the latest date
Open it, do you see a RP*** folder with a date earlier then when you started having problems
As eg..
I have a RP747 folder with Sept 1 date
-
Also, just make sure, once I renamed the files to .BAK, the icons changed they went from a wheel to the recycling icon?
-
Also, just make sure, once I renamed the files to .BAK, the icons changed they went from a wheel to the recycling icon?
That's fine, that what we want
Please see my last post
-
No I don't see any Clsid
-
It's the long stringed folder names
-
Ahh ok, sorry
Like I said I have three. The Last modified dates are Jan 2009, the other Aug 2008 and Aug 2010.
Which one?
-
Well the question asked which one had the latest date
So please open this one
Aug 2010
Open it, do you see a RP*** folder with a date earlier then when you started having problems
As eg..
I have a RP747 folder with Sept 1 date
If you had problems before Sep. 1, you don't want that folder, get it?
-
Yes I see many RP# with dates earlier then when i started having this problem
-
Open the RP### folder from just before having problems
Edit>>Then open the SNAPSHOT folder
Shrink the window so you can have it's folder open and the Tmp folder
Drag all the following files to the Tmp folder
Selecting COPY after each
_REGISTRY_USER_.DEFAULT
_REGISTRY_MACHINE_SECURITY
_REGISTRY_MACHINE_SOFTWARE
_REGISTRY_MACHINE_SYSTEM
_REGISTRY_MACHINE_SAM
After you have them copied over to the Tmp folder you can close the RP folder and it's Parent>>
mnt/sda1/System Volume Information/_restore
In the mnt/sda1/WINDOWS/Tmp folder
Right click on each of those files you just copied over and RENAME each, removing the _Registry info
As instructions from Microsoft
Rename _REGISTRY_USER_.DEFAULT to DEFAULT
Rename _REGISTRY_MACHINE_SECURITY to SECURITY
Rename _REGISTRY_MACHINE_SOFTWARE to SOFTWARE
Rename _REGISTRY_MACHINE_SYSTEM to SYSTEM
Rename _REGISTRY_MACHINE_SAM to SAM
Let me know when you have all 5 of those renamed please
-
done..hurry your time is almost up:))
-
I take it you figured out those files were in the SNAPSHOT folder
I edited the above reply after I posted
Hopefully a couple final steps
Navigate to the following folder if not still open
mnt/sda1/WINDOWS/system32/config
Inside the config folder, Right click on
DEFAULT >>No extension
Select FILE 'Default'
DELETE>>Select YES afterwards
Do the same for the following files
SECURITY
SOFTWARE
SYSTEM
SAM
after you have all 5 of those files deleted
Drag and copy from Tmp folder to Config folder the files you renamed earlier
So now you have a new set of files in Config called
DEFAULT
SECURITY
SOFTWARE
SYSTEM
SAM
After the new files are copied from Tmp to Config
Close all windows
Right click on SDA1 on lower left and unmount all volumes
Go to MENU>>Power off computer
At the prompt to Save to File, etc..
Remove CD from computer
Choose Don't Save then hit Enter on keyboard
Computer should shut down
After it has shut down, after 30 seconds turn it back on and see if it boots to Windows
If it does post back and let me know right away
-
[quote name='guestolo' date='05 September 2010 - 04:42 PM' timestamp='1283722927' post='471769']
I take it you figured out those files were in the SNAPSHOT folder
I edited the above reply after I posted
Hopefully a couple final steps
Navigate to the following folder if not still open
mnt/sda1/WINDOWS/system32/config
Inside the config folder, Right click on
DEFAULT >>No extension
Select FILE 'Default'
DELETE>>Select YES afterwards
Do the same for the following files
SECURITY
SOFTWARE
SYSTEM
SAM
after you have all 5 of those files deleted
Drag and copy from Tmp folder to Config folder the files you renamed earlier
So now you have a new set of files in Config called
DEFAULT
SECURITY
SOFTWARE
SYSTEM
SAM
After the new files are copied from Tmp to Config
Close all windows
Right click on SDA1 on lower left and unmount all volumes
Go to MENU>>Power off computer
At the prompt to Save to File, etc..
Remove CD from computer
Choose Don't Save then hit Enter on keyboard(THIS ONLY AFTER IT ASKED ME FOR DIFFERENT SETTINGS, THEN THE LAST ONE IT SAID SAVE OR DON"T SAVE)
Computer should shut down
After it has shut down, after 30 seconds turn it back on and see if it boots to Windows
If it does post back and let me know right away
[/quote]
It is doing a CHKDSK file verifying
-
Ok captain we have lift off(http://images.thetechguide.com/forum/public/style_emoticons/default/biggrin.gif)
Thank you so much..wow one full day at this.
I will be sure to make a donation for all this/
Again thank you
-
Go to START>>RUN>>Type in msconfig
Hit OK
Select "Launch System Restore"
Then select "Restore my Computer to an earlier time"
Click NEXT
All selected restore dates are in bold
Select a Date before all the problems started
Then click NEXT
The restore will start and then reboot the computer
Startup will be a bit slower, you will be prompted when successfully restored
Let me know how that goes
I'll check back later
-
Ok now my Kaspersky says that the databases are corrupted, i clicked on fix it now, but not working, so I rollback to previous known database and I am running an update now. I will let you know if it works or not.
-
See my last reply, don't get to far ahead, take your time
-
[quote name='guestolo' date='05 September 2010 - 05:17 PM' timestamp='1283725045' post='471774']
See my last reply, don't get to far ahead, take your time
[/quote]
OOppsss.. ok done the msconfig
What now? Mr. tech? oe is it Mrs?
-
THE END
Run your computer for a couple days and let me know how it's running afterwards
I've got to go, later
-
[quote name='guestolo' date='05 September 2010 - 05:31 PM' timestamp='1283725873' post='471776']
THE END
Run your computer for a couple days and let me know how it's running afterwards
I've got to go, later(OK, it is MR. TECH, only guys say Later)
[/quote]
Ok my kaspersky still says that the black list is corrupt. I also need a break, I will come later and see if I can figured that one out, I am sure there is something on their site.
Have a good!
-
Thank you for the donation, very much appreciated
/smile.gif\' class=\'bbc_emoticon\' alt=\':)\' />
And, yes, it is Mr.
I am sure there is something on their site.
If you haven't found it yet, here is what I found
http://support.kasperskyamericas.com/knowledge-base-article/2507
-
Your welcome, spending 8 hours with me to solve the problen, it is the least I could do.
Thanks for the Kaspersky but I went another route.
I got to the site and it knew what version I had and they suggested to get the new version, I think it is version 11. Downloaded that, and ran an update problem fixed. Mind you I did not know I could go into start, and repair from there...ALways learning.
Again Thanks a million!
-
Your very welcome, if OTL.exe is still around, simply open it and click on the CLEANUP button
Follow the prompts and reboot when prompted
If it won't remove that way, simply delete it, if it's still around
I'll lock this topic as your problems appear resolved
Take care rinoscar
/smile.gif\' class=\'bbc_emoticon\' alt=\':)\' />